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Amendments to the Claims; 

This listing of Claims will replace all prior versions and listings of Claims in the application: 

Listing of Claims; 

1. (currently amended) A method for managing a session key used for 
enabling communications between a mobile terminal and an access point in a 
wireless local area network ("WLAN"), comprising the steps of: 

receiving a request for access to the WLAN from the mobile terminal; 
determining a virtual operator associated with the access request; 
establishing a first secure channel between the access point and the 
virtual operator; 

requesting user authentication from the virtual operator via the first 
secure channel, wherein the virtual operator communicates with the mobile 
terminal via a second secure channel to authenticate the mobile terminal; 

selecting a session key and sending the session key to the virtual operator 
via the first secure channel, wherein the virtual operator sends the session key 
to the mobile terminal via the second secure channel; and 

communicating with the mobile terminal using the session key; 
wherein the step of requesting user authentication is performed in parallel 
with the step of selecting and sending the session key . 

2. (cancelled) 

3. (currently amended) The method according to claim 3 wherein 
the communicating step comprises communicating with the mobile terminal 
using the session key upon receiving notification of successful user 
authentication from the virtual operator. 

4. (currently amended) The method according to claim 3 1, wherein 
the step of selecting a session key comprises placing the session key on hold until 
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notification of successful user authentication from the virtual operator, and upon 
notification removing the session key from on hold and sending the session key 
to the virtual operator. 

5. (original) The method according to claim 4, further comprising the 
step of removing the session key from on hold if the authentication is successful. 

6. (currently amended) Th e m e thod accor d ingrto claim 1 , A method for 
managing a session key used for enabling communications between a mobile 
terminal and an access point in a wireless local area network ("WLAN"), 
comprising the steps of: 

receiving a request for access to the WLAN from the mobile terminal: 
determining a virtual operator associated with the access request: 
establishing a first secure channel between the access point and the 
virtual operator: 

requesting user authentication from the virtual operator via the first 
secure channel, wherein the virtual operator communicates with the mobile 
terminal via a second secure channel to authenticate the mobile terminal: 

selecting a session key and sending the session kev to the virtual operator 
via the first secure channel, wherein the virtual operator sends the session key 
to the mobile terminal via the second secure channel: and 

communicating with the mobile terminal using the session key: 
wherein the step of selecting a session key and sending the session key to 
the virtual operator via the first secure channel is performed only after receiving 
notification of successful user authentication from the virtual operator. 

7. (original) The method according to claim 1, wherein the virtual 
operator includes one of an Internet Service Provider, a cellular provider and a 
credit card provider. 

8. (currently amended) An apparatus for managing a session key used 
for enabling communications between a mobile terminal and a wireless local 
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means for receiving a request for access to the WLAN from the mobile 
terminal; 

means for determining a virtual operator associated with the access 
request; 

first means for communicating with the virtual operator via a first secure 
channel, the first communicating means requesting user authentication from the 
virtual operator via the first secure channel, wherein the virtual operator 
communicates with the mobile terminal via a second secure channel to 
authenticate the mobile terminal; 

means, coupled to the first communicating means, for selecting a session 
key and sending the session key to the virtual operator via the first secure 
channel, wherein the virtual operator sends the session key to the mobile 
terminal via the second secure channel; and 

second means for communicating with the mobile terminal using the 
session key; 

wherein the first communicating means requests user authentication in 
parallel with selecting means selecting and sending the session key 

9. (cancelled) 

10. (currently amended) The apparatus according to claim 9 8, wherein 
the second communicating means communicates with the mobile terminal using 
the session key upon receiving notification of successful user authentication from 
the virtual operator. 

11. (currently amended) The apparatus according to claim iO 8, 
wherein the selecting means places the session key on hold until notification of 
successful user authentication from the virtual operator, and upon notification 
removes the session key from on hold and sends the session key to the virtual 
operator. 
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12. (original) The apparatus according to claim 11 wherein the 
selecting means removes the session key from on hold if the authentication is 
successful. 

13. (currently amended) An apparatus for managing a session key used 
for enabling communications between a mobile terminal and a wireless local 
area network ("WLAN"), comprising: 

means for receiving a request for access to the WLAN from the mobile 
terminal: 

means for determining a virtual operator associated with the access 
request: 

first means for communicating with the virtual operator via a first secure 
channel, the first communicating means requesting user authentication from the 
virtual operator via the first secure channel, wherein the virtual operator 
communicates with the mobile terminal via a second secure channel to 
authenticate the mobile terminal: 

means, coupled to the first communicating means, for selecting a session 
key and sending the session key to the virtual operator via the first secure 
channel, wherein the virtual operator sends the session kev to the mobile 
terminal via the second secure channel: and 

second means for communicating with the mobile terminal using the 
session kev Th e- apparatus according to claim 8 , 

wherein the selecting means selects a session key and sends the session 
key to the virtual operator via the first secure channel only after receiving 
notification of successful user authentication from the virtual operator. 

14. (original) The apparatus according to claim 8, wherein the virtual 
operator includes one of an Internet Service Provider, a cellular provider and a 
credit card provider. 

15. (cancelled) 
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